GUEST OPINION: In April, managed file transfer vendor CrushFTP released information to a private mailing list on a new zero-day vulnerability affecting versions below 10.7.1 and 11.1.0 (as well as legacy 9.x versions) across all platforms.
GUEST OPINION:
Rapid7 is investigating two separate events affecting Fortinet firewall customers:
In sobering news to CISOs everywhere, cybersecurity company Rapid7 has found the majority of mass compromise events come from zero-day exploits, and increasingly these are hitting devices at the edge. Additionally, other research finds a staggering number of preventable compromises are still occurring where MFA could, and should have been in place but was not.
GUEST OPINION: In April, managed file transfer vendor CrushFTP released information to a private mailing list on a new zero-day vulnerability affecting versions below 10.7.1 and 11.1.0 (as well as legacy 9.x versions) across all platforms.
GUEST OPINION: Skilled cybersecurity talent is in tight supply. It's challenging to recruit, hire and retain skilled professionals: trends that are expected to continue into the near future.
GUEST RESEARCH: WatchGuard Technologies, a global leader in unified cybersecurity, today announced the findings of its latest Internet Security Report, detailing the top malware trends and network and endpoint security threats analysed by WatchGuard Threat Lab researchers in Q1 2023. Key findings from the data show phishers leveraging browser-based social engineering strategies, new malware with ties to nation states, high amounts of zero day malware, living-off-the-land attacks on the rise, and more. This edition of the report also features a new, dedicated section for the Threat Lab team's quarterly ransomware tracking and analysis.
GUEST OPINION: While repercussions from the recent hacker attacks on Australia's Optus and Medibank are still resounding as media writers estimate ever higher damage costs, attacks on supply chain targets are flying under the radar.
COMPANY NEWS: Aqua Security, the leading pure-play cloud native security provider, today announced its new Lightning Enforcer to stop zero-day attacks and shield critical vulnerabilities in production until a patch can be applied.
GUEST RESEARCH: Rubrik, the zero trust data security company, today announced the Australian findings from its inaugural State of Data Security report, commissioned by Rubrik and conducted by Wakefield Research. Among the key findings regarding the most pressing challenge Australian cybersecurity leaders face in securing their organisation's data was "insufficient talent in IT and SecOps", cited by 26% of respondents as the top security challenge.
Tigera's Calico Cloud cloud-native application protection platform combines zero-trust principles with machine learning, enabling continuous compliance by prioritising and remediating risks through security policy changes.
With cyber stress reaching new heights during COVID, cyber professionals and others are invited to take the time to de-escalate with a one hour practice this Sunday, October 24, 11am-12pm AEDT, that will leave you renewed, relaxed and energised - with six free passes on offer.
GUEST INTERVIEW: We live in a time of cyber war, with businesses under constant attack, with ransomware running riot, with COVID providing chaos and cover for cyber criminals to extort and blackmail, but the bad guys aren't the only ones on the playing field: Secureworks and other security firms are working hard to fight back to keep businesses and individuals protected.
GUEST INTERVIEW: We live in a time of cyber war, with businesses under constant attack, with ransomware running riot, with COVID providing chaos and cover for cyber criminals to extort and blackmail, but the bad guys aren't the only ones on the playing field: Secureworks and other security firms are working hard to fight back to keep businesses and individuals protected.
Seventy-one flaws have been patched in Microsoft's products, the company announced on Tuesday, the monthly Patch Tuesday.
The formation of a global partnership to ensure legal protections for good faith (bona fide) zero day researchers has been enacted by the Paris-based not-for-profit Cybersecurity Advisor Network (CyAN), with such research illegal in some jurisdictions, putting modern life at serious risk. We speak to Peter Coroneos, CyAN VP, to find out more.
The formation of a global partnership to ensure legal protections for good faith (bona fide) zero day researchers has been enacted by the Paris-based not-for-profit Cybersecurity Advisor Network (CyAN), with such research illegal in some jurisdictions, putting modern life at serious risk. We speak to Peter Coroneos, CyAN VP, to find out more.
GUEST OPINION: Anyone who has ever watched a Bond movie will know that James Bond has a trust complex. Whether it's M, MI6, or a femme fatale – Bond always gets into trouble when he trusts the wrong person (i.e., Vesper Lynd in Casino Royale).
There has been a major rise in zero day malware detections, increasing use of Microsoft Office exploits and legitimate penetration testing tools in the third quarter of 2019, according to a new Internet security report.
A newly discovered zero-day vulnerability in Google’s Chromium mobile browser dubbed BadKernel allows hackers to gain control of a user’s Android smartphone.
Security company Ixia says its new ThreatARMOR solution adds "zero-day malware immunity", blocking mutated versions of malware that try to evade traditional security solutions.
If you have a spare $90K and want to exercise your nefarious hacker alter-ego, there is a new zero-day vulnerability in the dark web store just waiting for your payment – in Bitcoin, of course.
Most cybersecurity is making up for weak platforms. We need to address the fundamentals, design platforms that prevent out-of-bounds access[…]
For most developers the security/performance trade off is still the hardest one to tackle, even as the cost of processing[…]
RISC has been overhyped. While it is an interesting low-level processor architecture, what the world needs is high-level system architectures,[…]
There are two flaws that are widespread in the industry here. The first is that any platform or language should[…]
Ajai Chowdhry, one of the founders and CEO of HCL is married to a cousin of a cousin of mine.[…]